1

Security Operations Manager Jobs in Fairfield, CT

Security Operations Analyst Franchise World Headquarters, LLC Shelton, CT Why Join Subway? At ... Sitting within the Identity & Access Management team, this role is the operational bridge between ...

Security Operations Center Officer

Ridgefield, CT · On-site

$16 - $19/hr

Manage access control systems, including badge permissions, door alarms, and visitor authorization ... Security Operations Center, corporate security, law enforcement, military, or related field.

Operations Manager Our client, a leading Alternative Asset Manager in Connecticut, is looking for ... securities and credit products, and a background in alternative investment strategies. You will.

Operations Manager

Milford, CT

$120K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Operations Manager - Surface SealingPosition Summary The Operations Manager - Surface Sealing ... or security clearance requirements, including, as applicable: * The California Fair Chance Act

Department of Homeland Security E-Verify program. E-Verify is an internet-based system used to ... Operations Management * Plan, organize, and direct daily Environmental Services operations to ...

New

Operations Manager

Smithtown, NY

$22 - $36/hr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Position Summary The Operations Manager is a member of the Store Management team, and as such, fulfills the company purpose of helping people on their path to better health by driving store execution ...

Operations Manager

Somers, NY

$22 - $36/hr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

Position Summary The Operations Manager is a member of the Store Management team, and as such, fulfills the company purpose of helping people on their path to better health by driving store execution ...

Operations Manager

Hauppauge, NY · On-site

$80K - $100K/yr

  • Medical

  • Retirement

  • PTO

Role Summary The Operations Manager will serve as a critical connector across two divisions -- SCM ... Familiarity with security or AV systems (e.g., Axis, Genetec, Control4) and willingness to pursue ...

next page

Showing results 1-20

Security Operations Manager information

See Fairfield, CT salary details

$35.7K

$80.1K

$143.3K

How much do security operations manager jobs pay per year?

As of Aug 15, 2026, the average yearly pay for security operations manager in Fairfield, CT is $80,122.00, according to ZipRecruiter salary data. Most workers in this role earn between $53,000.00 and $102,500.00 per year, depending on experience, location, and employer.

What is the difference between Security Operations Manager vs Security Analyst?

AspectSecurity Operations ManagerSecurity Analyst
Required CredentialsSecurity certifications (CISSP, CISM), relevant experienceSecurity certifications (CompTIA Security+, CEH), technical skills
Work EnvironmentOversees security teams, manages security operationsMonitors security systems, analyzes threats
Employer & Industry UsageUsed in organizations with security teams, corporate security

The Security Operations Manager focuses on managing security teams and overseeing security operations, while the Security Analyst primarily monitors security systems and analyzes threats. Both roles require security certifications and are integral to organizational security, but they differ in scope and responsibilities.

What are the key skills and qualifications needed to thrive as a security operations manager, and why are they important?

To thrive as a Security Operations Manager, you need expertise in risk assessment, incident response, and security policy development, often supported by a degree in cybersecurity or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications like CISSP or CISM is typically required. Strong leadership, communication, and problem-solving skills are essential for managing teams and responding effectively to security incidents. These skills are crucial for protecting organizational assets, ensuring regulatory compliance, and maintaining a proactive security posture.

What does a security operations manager do?

As a security operations manager, you develop and implement strategies to help protect the assets of your company. As part of your duties, you may determine the best protocol for each situation, manage the hiring and training process for other security personnel, and otherwise oversee daily security needs. Many details of this job depend on the security threats your employer faces. For example, retail stores frequently face problems with theft while research companies may be more concerned with the safety of digitally-archived information. Many security operations managers focus on physical threats and collaborate with systems administrators and other computer-focused personnel to secure digital assets.

What does a security operations manager do?

A Security Operations Manager oversees the daily operations of an organization's security team, ensuring the protection of assets, personnel, and information. They develop and implement security policies, manage incident response efforts, and coordinate with other departments to mitigate risks. Additionally, they monitor security systems, lead investigations into security breaches, and ensure compliance with relevant laws and regulations. Their role is critical in maintaining a secure environment and continuously improving the organization's security posture.

What are some typical challenges a security operations manager faces when coordinating between internal teams and external partners?

A Security Operations Manager often navigates challenges such as ensuring clear communication of security protocols between internal IT teams and third-party vendors, aligning security practices with organizational goals, and managing incident responses across multiple stakeholders. Balancing business needs with security compliance requirements can also be complex, especially when integrating new technologies or services. Effective collaboration and establishing well-defined escalation paths are key to overcoming these challenges and maintaining a resilient security posture.

What job categories do people searching Security Operations Manager jobs in Fairfield, CT look for?

The top searched job categories for Security Operations Manager jobs in Fairfield, CT are:

What cities near Fairfield, CT are hiring for Security Operations Manager jobs?

Cities near Fairfield, CT with the most Security Operations Manager job openings:

Security Operations Analyst

Subway

Shelton, CT

Full-time

Posted 8 days ago


Subway rating

4.4

Company rating: 4.4 out of 10

Based on 2,050 frontline employees who took The Breakroom Quiz

98th of 106 rated fast food restaurants


Job description

Security Operations Analyst

Franchise World Headquarters, LLC

Shelton, CT


Why Join Subway?

At Subway, we are not standing still. We are building.


This is a business focused on what matters most: growing franchisee profitability, strengthening our brand and creating long-term value. The people who thrive here are the ones who want to make a real impact.


You will not just do the work. You will shape it.


We move fast. We think like owners. We make decisions that matter. We hold ourselves to a high standard because what we do directly impacts thousands of franchisees around the world.


If you bring energy, accountability and a bias for action, you will fit right in.

We take the work seriously, but we also know the best results come from teams that support each other, celebrate wins and show up ready to build something better every day.

This is your chance to be part of whats next.



Position Overview

The Security Operations Analyst operates the identity security and access-governance layer of Subway's Cybersecurity program. Sitting within the Identity & Access Management team, this role is the operational bridge between IAM and the Detect & Respond function identity-first in day-to-day work, but grounded in general security operations center (SOC) practice. The Analyst runs access-governance controls that keep the enterprise least-privileged and audit-ready, operates identity threat detection and response using CrowdStrike Falcon Identity Protection, and investigates access anomalies in Falcon Next-Gen SIEM. This role is designed as a genuine growth seat and launchpad into the broader Cybersecurity program, with development paths toward senior identity security, threat detection engineering, security engineering, or IAM engineering.


Responsibilities

Operate identity threat detection and response with CrowdStrike Falcon Identity Protection: monitor and triage identity-based detections, assess risk and severity, apply risk-based policy actions within defined guardrails, and escalate confirmed threats to the Detect & Respond team; investigate access anomalies end to end using identity telemetry in CrowdStrike Falcon Next-Gen SIEM authentication events, MFA activity, privileged-account usage, and provisioning changes.

Support tuning of identity detections, dashboards, and alert quality with the Detect & Respond team; participate in incident response for identity-related incidents including account compromise, credential abuse, and unauthorized access executing containment actions such as session revocation, credential reset, and access suspension under team runbooks; monitor privileged and service-account activity for anomalous behavior and policy violations.

Run Okta Identity Governance access certification campaigns end to end: campaign setup and scoping, reviewer coordination and follow-up, revocation execution, exception tracking, and production of audit-ready evidence for PCI-DSS 4.0 and cyber-insurance programs; support access request workflow operations including approval-path exceptions and escalations outside self-service.

Apply least-privilege principles in daily work: flag over-broad group and role assignments, validate time-bound privileged access, and drive cleanup of dormant, orphaned, or over-privileged accounts; produce and maintain access evidence for internal and external audits and compliance programs.

Work down the standing identity-risk case backlog: investigate, prioritize, remediate, and close findings such as dormant accounts, stale privileged access, weak authentication paths, and unowned service accounts; track remediation against service-level targets and report progress and systemic patterns to Cybersecurity leadership.

Handle Tier-2/3 identity escalations remaining after automation complex access requests, provisioning exceptions, and onboarding/offboarding edge cases; manage assigned tickets in ServiceNow meeting SLA targets; support access-related requests from investigations, legal holds, and HR partners with appropriate discretion and documentation; participate in the team's shared on-call rotation.

Author and maintain runbooks, triage guides, and knowledge-base articles for identity security operations and certification processes; track and report on identity-risk backlog burn-down, certification completion rates, and detection quality metrics; propose governance, detection, and automation improvements from observed patterns.


Qualifications

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field or equivalent work experience.

13 years in security operations, identity operations, a security operations center (SOC), or IT operations with significant identity or security scope.

Working knowledge of IAM fundamentals: authentication and MFA, SSO concepts, directory services, joiner/mover/leaver lifecycle, and least-privilege access.

Hands-on exposure to Okta or a comparable identity provider: user and group administration, MFA management, and basic application assignment; Okta strongly preferred.

Familiarity with SOC practices: alert triage, severity assessment, escalation paths, evidence handling, and incident documentation.

Exposure to a SIEM or security analytics platform querying logs, investigating events, and reading detections; CrowdStrike Falcon Next-Gen SIEM a plus; willingness to develop CQL proficiency required.

Active Directory fundamentals (users, groups, OUs) and familiarity with Microsoft Entra ID and Microsoft 365 administration concepts.

Experience with an ITSM platform (ServiceNow preferred) in a ticket-driven operations environment.

Strong written documentation habits investigations, evidence, and runbooks that others can follow and auditors can rely on.

Comfort using LLM and generative AI tools in day-to-day technical and analytical work.


Preferred Qualifications

Direct experience with identity threat detection and response tooling (CrowdStrike Falcon Identity Protection or similar ITDR platform).

Exposure to Okta Identity Governance or another IGA/access-certification platform (SailPoint, Saviynt, Omada).

Familiarity with identity-focused attack techniques credential stuffing, MFA fatigue, token theft, Kerberos abuse, lateral movement and the MITRE ATT&CK framework.

Basic scripting in PowerShell or Python for reporting, reconciliation, and evidence gathering.

Awareness of non-human identity concepts: service accounts, credential scoping, and access patterns for LLM and agentic AI integrations.

Exposure to attack surface/asset management (CAASM) tooling.

Relevant certification: CompTIA Security+, Okta Certified Professional, Microsoft SC-300, or GIAC entry-level certification.


What do we offer?

Insurance Plans (Medical, Life)

Pension/401K/RSP (country specific)

Competitive Bonus

Mobility Allowance

Tuition Reimbursement

Company Holidays

Volunteering time

And More..




What Subway employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom